Show filters
83 Total Results
Displaying 61-70 of 83
Sort by:
Attacker Value
Unknown

CVE-2015-0591

Disclosure Date: January 15, 2015 (last updated October 05, 2023)
Cisco Unified Communications Domain Manager (UCDM) 10 allows remote attackers to cause a denial of service (daemon hang and GUI outage) via a flood of malformed TCP packets, aka Bug ID CSCur44177.
0
Attacker Value
Unknown

CVE-2015-0588

Disclosure Date: January 15, 2015 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in Cisco Unified Communications Domain Manager (UCDM) 10 allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCuo77055.
0
Attacker Value
Unknown

CVE-2014-7991

Disclosure Date: November 14, 2014 (last updated October 05, 2023)
The Remote Mobile Access Subsystem in Cisco Unified Communications Manager (CM) 10.0(1) and earlier does not properly validate the Subject Alternative Name (SAN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof VCS core devices via a crafted certificate issued by a legitimate Certification Authority, aka Bug ID CSCuq86376.
0
Attacker Value
Unknown

CVE-2014-3338

Disclosure Date: August 12, 2014 (last updated October 05, 2023)
The CTIManager module in Cisco Unified Communications Manager (CM) 10.0(1), when single sign-on is enabled, does not properly validate Kerberos SSO tokens, which allows remote authenticated users to gain privileges and execute arbitrary commands via crafted token data, aka Bug ID CSCum95491.
0
Attacker Value
Unknown

CVE-2014-3317

Disclosure Date: July 14, 2014 (last updated October 05, 2023)
Directory traversal vulnerability in the Multiple Analyzer in the Dialed Number Analyzer (DNA) component in Cisco Unified Communications Manager 10.0(1) allows remote authenticated users to delete arbitrary files via a crafted URL, aka Bug ID CSCup76314.
0
Attacker Value
Unknown

CVE-2014-3319

Disclosure Date: July 14, 2014 (last updated October 05, 2023)
Directory traversal vulnerability in the Real-Time Monitoring Tool (RTMT) in Cisco Unified Communications Manager (CM) 10.0(1) allows remote authenticated users to read arbitrary files via a crafted URL, aka Bug ID CSCup57676.
0
Attacker Value
Unknown

CVE-2014-3315

Disclosure Date: July 10, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in viewfilecontents.do in the Dialed Number Analyzer (DNA) component in Cisco Unified Communications Manager allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCup76308.
0
Attacker Value
Unknown

CVE-2014-3318

Disclosure Date: July 10, 2014 (last updated October 05, 2023)
Directory traversal vulnerability in dna/viewfilecontents.do in the Dialed Number Analyzer (DNA) component in Cisco Unified Communications Manager allows remote authenticated users to read arbitrary files via a crafted URL, aka Bug ID CSCup76318.
0
Attacker Value
Unknown

CVE-2014-3316

Disclosure Date: July 10, 2014 (last updated October 05, 2023)
The Multiple Analyzer in the Dialed Number Analyzer (DNA) component in Cisco Unified Communications Manager allows remote authenticated users to bypass intended upload restrictions via a crafted parameter, aka Bug ID CSCup76297.
0
Attacker Value
Unknown

CVE-2014-0743

Disclosure Date: February 27, 2014 (last updated October 05, 2023)
The Certificate Authority Proxy Function (CAPF) component in Cisco Unified Communications Manager (Unified CM) 10.0(1) and earlier allows remote attackers to bypass authentication and modify registered-device information via crafted data, aka Bug ID CSCum95468.
0